The rsync package is vulnerable to CVE-2022-29154[1], which is not yet in a non-preview release. This commit applies the upstream commit to fix it and several subsequent commits needed to fix bugs the initial fix introduced[2]. 1. https://rsync.samba.org/ftp/rsync/NEWS#SECURITY_FIXES-3.2.5 2. https://bugs.archlinux.org/task/75558 Signed-off-by: John Audia <therealgraysky@proton.me> |
||
---|---|---|
.. | ||
010-fix-CVE-2022-29154.patch | ||
011-more-improvements-to-file-list-checking.patch | ||
012-a-few-more-minor-changes.patch | ||
013-handle-a-trailing-slash.patch |